
PixRem – Unused Image Cleaner Security & Risk Analysis
wordpress.org/plugins/pixremFind and delete unused images in your Media Library. Backup, restore, whitelist, and scan support for all major page builders.
Is PixRem – Unused Image Cleaner Safe to Use in 2026?
Generally Safe
Score 100/100PixRem – Unused Image Cleaner has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.
The "pixrem" v1.0.3 plugin exhibits a mixed security posture. On the positive side, it demonstrates good practices in output escaping, with 93% of outputs being properly escaped, and has a history entirely free of known vulnerabilities (CVEs). The plugin also includes a reasonable number of nonce and capability checks (11 and 10 respectively). However, a significant concern arises from its attack surface, with 10 AJAX handlers identified, of which a substantial 7 lack authentication checks. This creates a notable entry point for potential unauthorized actions. Furthermore, the presence of the `unserialize` function is a critical red flag, as it can lead to remote code execution if user-controlled data is passed to it without proper sanitization. While taint analysis found no critical or high severity unsanitized flows, the combination of numerous unprotected AJAX endpoints and the `unserialize` function represents a tangible risk that could be exploited by an attacker to achieve arbitrary code execution or perform unauthorized actions on the WordPress site.
Key Concerns
- Unprotected AJAX handlers
- Dangerous unserialize function present
PixRem – Unused Image Cleaner Security Vulnerabilities
PixRem – Unused Image Cleaner Release Timeline
PixRem – Unused Image Cleaner Code Analysis
Dangerous Functions Found
SQL Query Safety
Output Escaping
Data Flow Analysis
PixRem – Unused Image Cleaner Attack Surface
AJAX Handlers 10
WordPress Hooks 10
Maintenance & Trust
PixRem – Unused Image Cleaner Maintenance & Trust
Maintenance Signals
Community Trust
PixRem – Unused Image Cleaner Alternatives
Unattached Media Manager
unattached-media-manager
Fix the WordPress Unattached media filter. Automatically attach used media files to their posts so you can safely clean up your library.
MA Smart Image Cleaner
ma-smart-image-cleaner
Safely find and clean unused images in your WordPress Media Library without breaking your website.
Oli Media Cleaner
oli-media-cleaner
Scan and remove unused media files from your WordPress site to free up disk space.
Unused Media Scan & Delete
unused-media-scanner
Scan and delete unused media
Assetbroom – Unused Media & Duplicate Image Cleaner
assetbroom-media-cleaner
Detect unused images, duplicate media files, and safely clean your WordPress media library without breaking your website.
PixRem – Unused Image Cleaner Developer Profile
1 plugin · 20 total installs
How We Detect PixRem – Unused Image Cleaner
Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.
Asset Fingerprints
/wp-content/plugins/pixrem/admin/js/progress.js/wp-content/plugins/pixrem/assets/css/style.css/wp-content/plugins/pixrem/admin/js/progress.jsHTML / DOM Fingerprints
pixremAjaxpixremAjax